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(54) System and method for embedding a watermark signal that contains message data in a 
digital image 



(57) A method for embedding a watermark signal 
that contains message data in a digital image represent- 
ed as a two-dimensional array of pixel values, includes 
the steps of: providing a dispersed message image hav- 
ing pixel values representative of the message data; 



modifying each pixel value of the dispersed message 
image as a function of the corresponding pixel value in 
the digital image; and combining the modified dispersed 
message image with the digital image to produce a wa- 
termarked image. 
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Description 

[0001] The invention relates generally to the field of digital image processing, and in particular to a method for em- 
bedding watermarks in digital images. 
5 [0002] Digital watermarking refers to the embedding of a message in an image or image sequence for such purposes 
as establishing ownership, tracking the origin of the data, preventing unauthorized copying, or conveying additional 
information (meta-data) about the content. Watermarking has potential uses in a wide range of products, including 
digital still and video cameras, printers and other hardcopy output devices, and content delivery services (e.g., Internet- 
based photofinishing). 

10 [0003] Numerous image watermarking methods have been described in the prior art, including both patents and the 
technical literature. Many of these methods are described in review papers such as: Hartung and Kutter, Multimedia 
Watermarking Techniques, Proc. IEEE, 87(7), pp. 1079-1107 (1999), and Wolfgang et a!., Perceptual Watermarks for 
Digital Images and Video,* Proc. IEEE, 87(7), pp. 1108-1126 (1999). 

[0004] A basic distinction between various methods is whether the watermark is applied in the spatial domain or the 
15 frequency domain. In either approach, many techniques use a pseudo-random (PN) sequence in the watermark gen- 
eration and extraction processes. The PN sequence serves as a carrier signal, which is modulated by the original 
message data, resulting in dispersed message data (i.e., the watermark) that is distributed across a number of pixels 
in the image. A secret key (i.e., seed value) is commonly used in generating the PN sequence, and knowledge of the 
key is required to extract the watermark and the associated original message data. 
20 [0005] The use of a PN sequence in the watermarking process typically results in a watermark signal that has similar 
visual characteristics to a random noise field. While noise is an inherent component of digital images because of sensor 
noise (whether originating from film grain when film is scanned or from sensor noise in a digital camera), it is generally 
desirable to minimize the additional noise that is introduced by the watermarking process. This is accomplished by 
reducing the amplitude of the watermark signal so that it is below the threshold of perception (i.e. subthreshold). The 
25 result is a watermark that is visually transparent, i.e. the watermark cannot be perceived by an observer under typical 
viewing conditions. 

[0006] In some applications it may be impossible to provide sufficient robustness to the embedded watermark and 
still meet the goal of visual transparency. This is because a low amplitude watermark is more vulnerable to removal 
attacks, where an attempt is made to remove the watermark by using various types of image processing methods, e. 
30 g. lowpass filtering. In such cases, it becomes necessary to increase the watermark amplitude, which may result in a 
watermark pattern that is easily detectable (i.e. suprathreshold), and perhaps even objectionable, when viewed by an 
observer. 

[0007] There are watermarking techniques that intentionally use suprathreshold watermarks. Some of these tech- 
niques embed watermarks that are easily visible to any observer, e.g., a logo that is placed in the corner of a television 

35 screen to indicate the broadcasting station. These types of watermarks are called obvious watermarks. Other supra- 
threshold watermark techniques are more subtle in that the watermark may be obvious to an observer who knows the 
nature of the watermark, but it is not obvious to an uninformed observer. An example of this latter approach can be 
found in U.S. Patent No. 5,699,427 issued December 16, 1997 to Chow et al. entitled Method to Deter Document and 
Intellectual Property Piracy Through Individualization. This patent teaches a method for modifying documents and 

40 images in such a way that numerous variations of the original can be produced, but these variations do not change 
the overall meaning or usefulness of the documents or images. The variations can include changing the spelling of 
words in a document or the color of objects in an image. A limitation of this approach is that the amount of embedded 
information Is constrained, and it is also very difficult to embed arbitrary information such as a time/date stamp. More- 
over, the method requires significant manual intervention to identify the words, objects, etc. that can be modified without 

45 affecting the overall meaning or usefulness of the document or image. 

[0008] There is a need therefore to have a watermarking technique for images that allows the embedding of a high 
amplitude watermark in such a way that: 1) the resulting watermark is not objectionable to an observer; 2) arbitrary 
information can be included in the watermark; and 3) manual intervention is not required to perform the embedding 
process. 

50 [0009] The need is met according to the present invention by providing a method for embedding a watermark signal 
that contains message data in a digital image represented as a two-dimensional array of pixel values that includes the 
steps of: providing a dispersed message image having pixel values representative of the message data; modifying 
each pixel value of the dispersed message image as a function of the corresponding pixel value in the digital image; 
and combining the modified dispersed message image with the digital image to produce a watermarked image. 

55 [0010] The present invention has the advantage of making the visual characteristics of the watermark look like an 
expected attribute of an image that is produced by a given imaging system. In particular, the present invention minimizes 
the objectionability of the watermark pattern by making its appearance similar to the expected noise for the given 
imaging system. 
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Pin 1 i* a Drior art method for embedding a watermark in an original image; 
J 1 ! 3 ^o art method for extracting a watermark from an image containing an embedded watermark; 
Fig. 3 il ; a block d^am that illustrates The embedding of a signal-dependent watermark accord.ng to the present 

STSTin example of noise standard deviation as a function of signal level for signal-dependent noise; 
Fig 5 is a prior art preferred embodiment for the frequency spectrum of a watermark earner s.gnal, 

F&rra;^ 

?S 8 is° an example of the frequency spectrum components that represent the carrier support region and the film 
grain noise support region. 

mm 1 1 The oresent invention is preferably implemented by a programmed digital computer. The computer can be a 

iZeDaTZt^Z Application. This patent is included in its entirety by reference. £ 
tSoue an original two-dimensional digital image 10, «x.y), is processed to produce a watermarked ™age 12 
technique an origins represents the data to be embedded in the onginal image 10. In its most 

1 ^fo^Temisage 14* an 1^ andTcan represent an icon 16 (e.g., atrademarx), or it can represent the 

are 



1 a n v n mp<?saae imaae 14, Mx,y), is generated from the message data; 

2 The rn^ag imlge 14 is circuSrly convoked 20 with a n x n carrier image 22 «x.y) to produce a n x n 
^eJdmesfagTimage24.^ 

3 The^disSrsed message image 24 is scaled 28 in amplitude using a mult.pHcat.ve factor a ; and ^ 

4. TSe Sed dispersedmessage image 30 is added to the original image 10 as contiguous n x n ales to form a 
watermarked image 12, l\x,y). 

LmnSon lowSss^fmering etc ) are applied to the watermarked image. Other watermarking techn.ques use drf- 
Sr^S^t^S" 1 Message data, but the repetitive nature of the embedding process is a common 
aspect because of this improved robustness. 

[0015] This embedding process for each tile can be desenbed mathemat.cally as. 

|',(x,y) = a[M(x,y)*C(x,y)]+l l (x,y), ( 1 ) 

where the symbol * represents circular convolution and the subscript i indicates the P> tile (/ = 1 N). From Fourier 

Theorv ^^convolution is equivalent in the frequency domain to adding phase while mult.ply.ng magnrtudes. There- 

or e Thfeflecl o ^convolving the message image 14 with the carrier image 22 is to distribute the message energy in 
SSJl^lS^ErJ the carrierWand to modulate the amplitude spectrum of ^ <^ 
tn^amtSe spectrum of the carrier image. If the message image were a sing.e delta function, 8(x y), and the earner 

mlgrhad random phase and uniform Fourier magnitude, the effect of convolving wrth the earner .mage would be to 
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15 



distribute the delta function over space. Similarly, the effect of convolving a message image with a random phase 
carrier image is to spatially disperse the message energy. 

[0016] As shown in Fig. 2, the process as described by Honsinger et aL for extracting the message data from a 
watermarked image 12 consists of the following fundamental steps: 

1 . Contiguous nxn tiles 12* are formed from the watermarked image 12, /'(x,y); 

2. The tiles 12' are averaged 32 across each spatial location (x,y) to form an averaged tile 34; 

3. The averaged tile 34 is circularly correlated 36 with the n x n carrier image 22 C(x,y) to produce an extracted n 
x n message image 14 1 , M (x,y); and 

4. The message data is recovered from the extracted message image 14'. 

[0017] The averaging 32 of the individual tiles 12* improves the extraction of the message image because the dis- 
persed message image in each tile will add constructively (since it is the same in each tile), while the corresponding 
original image content in each tile will add destructively (since it is typically different in each tile). 
[0018] This watermark extraction process can be described mathematically as: 



20 
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M'(x,y) = 



1 N 

^Zli(x,y) 



i=l 
N 



®C(x,y) 



^2>[ M(x,y) * C(x, y)]+Ii (x,y)) 



N i=l 



= a[M(x ,y) * C(x, y)] ® C(x, y) + 



N 



<8>C(x,y) 

®C(x,y) 



(2) 



^Zli(x,y) 

/ 1=1 



30 where the symbol represents circular correlation. Correlation is similar to convolution in that Fourier magnitudes also 
multiply. In correlation, however, phase subtracts. Therefore, the phase of the carrier image subtracts when the wa- 
termarked image is correlated with the carrier image, thus leaving the message image. Indeed, if we assume that the 
carrier image is designed to have uniform Fourier amplitude, then the process of correlation of the carrier image on 
the watermarked image in Eq. 2, can be reduced to: 

35 

M'(x, y) = ctM(x, y) + noise. (3) 



[0019] That is, the extracted message image is a scaled version of the original message image plus noise due to 
40 the cross correlation of the summed original image tiles with the carrier image. 

[0020] In the method of Honsinger et al., the amplitude of the watermark is adjusted by changing the scaling factor 
a. However, the amplitude is always adjusted by the same amount throughout the entire image. Referring to Fig. 3, in 
the present invention, the amplitude of the dispersed message image 24 is scaled 28* at each spatial location (x, y) in 
each tile / to produce a scaled dispersed message image 30\ With this modification, the embedding equation becomes: 

45 

I'ifx.y) = a i (x,y)[M(x,y)*C(x,y)]+l i (x,y), (4) 



where a^x, y) is a signal-dependent scaling factor that varies from pixel to pixel within a given tile and from tile to tile. 
50 Specifically, 



a i (x,y) = f(l i (x > y)) J (5) 

where f(l f (x, y)) indicates that the dispersed message image amplitude scaling factor is a function of the original image 
pixel value /, at each spatial location (x f y). 

[0021] As an illustration of signal-dependent noise and the resulting effect on the watermark amplitude scaling factor, 
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we consider a system that uses a conventional color negative photographic film as the original capture medium. After 
exposure and development, the film is digitized by scanning with a digital scanner. Both film grain and scanner noise 
are introduced during this process, and we can determine the overall system noise as a function of the signal level (e. 
g., the signal level could be the codevalue that corresponds to a particular density in the original negative). The char- 
5 acterization of the system noise is typically performed by measuring the standard deviation, a, of an image region 
containing a uniform signal level, and repeating this measurement at different signal levels. A complete description of 
methods for characterizing noise in film-based systems can be found in U.S. Patent No. 5,641 ,596 issued June 24, 
1 997 to Gray et al. entitled Adjusting Film Grain Properties in Digital images. 

[0022] An example of the noise standard deviation as a function of signal level is shown in Fig. 4, where all values 
10 have been specified in terms of 8-bit codevalues. In this figure, three different single-dependent relationships are shown: 
one for the red color channel 40, one for the green channel 42, and one for the blue channel 44. Regardless of the 
color channel, it can be seen the noise standard deviation first increases slightly, then decreases, and finally increases 
again as the signal level is increased. This behavior is the result of the combination of the film grain noise increasing 
and then decreasing as the signal level increases, while the scanner noise starts low and then increases with increasing 
15 signal level. 

[0023] To apply the signal-dependent characterization of the system noise as shown in Fig. 4, the scaling factor is 
made proportional to the noise standard deviation that corresponds to the signal level at each location, i.e. 



20 



a i (x,y) = ka(l j (x,y)), (6) 



where k is a constant. We can choose k so that the amplitude of the resulting watermark signal matches the overall 
system noise, or it may advantageous to increase or decrease k to provide more or less noise, respectively, in the 
watermarked image. The mapping of the image values lj(x, y) to a noise standard deviation o can be performed using 
25 a lookup table or a mathematical equation. Such mappings are described in the aforementioned patent by Gray et al. 
To better mimic the overall system noise characteristics, it is also desirable to use separate mappings for the red, 
green, and blue color channels as shown in Fig. 4. For this example, the result is that the watermarked image will have 
more noise in the blue channel than the red and green channels. This is a common characteristic of film/scanner 
systems. 

30 [0024] There are watermarking techniques in the prior art that also adjust the watermark amplitude based upon local 
signal content in the original image. Descriptions of such techniques can be found, for example, in the aforementioned 
review paper by Wolfgang et al.; in a paper by Kundar et al. entitled A Robust Digital Image Watermarking Method 
Using Wavelet-Based Fusion, Proc. IEEE Int. Conf. Image Processing (ICIP), Vol; I, pp. 544-547, 1997; and in U.S. 
Patent No. 6,031 ,914 issued February 29, 2000 to Tewfik et al. entitled Method and Apparatus for Embedding Data, 

35 Including Watermarks, in Human Perceptible Images. There are two important distinctions between these prior art 
methods and the present invention. First, the motivation for locally changing the watermark amplitude in the prior art 
methods is to take advantage of perceptual masking. Masking allows for an increase in the watermark amplitude in 
image regions where there is significant image content, e.g; edge regions or texture regions, for the purpose of in- 
creasing the watermark robustness. The image content masks the increased amplitude so that the watermark is still 

40 below the threshold of perception. In comparison, the present invention does not use masking to maintain impercep- 
tibility of the watermark. Instead, it uses the signal-dependent nature of imaging systems to adjust the watermark 
amplitude so as to provide a visible watermark signal that is more natural in appearance. Of course, increasing the 
watermark amplitude in certain areas because of signal-dependent noise may also take advantage of masking to some 
extent, thus lowering the visibility of the signal-dependent watermark. However, the present invention is not motivated 

45 by the desire to keep the watermark below the threshold of perception. To the contrary, the present invention specif ically 
allows watermark patterns to be perceptible, but reduces the objectionability of the visible patterns by making the 
watermark have visual characteristics that are consistent with the characteristics of the imaging system. As a side 
benefit, the signal-dependent nature of the watermark may also improve the watermark robustness by allowing overall 
larger amplitudes, depending on the distribution of image values (which correspondingly determine the signal-depend- 

50 ent scaling factor). 

[0025] The second distinction between the prior art and the present invention is that the adjustment of the watermark 
amplitude is based upon different image attributes. In the prior art masking techniques, the amplitude adjustment is 
performed over a local region (e.g., an 8 x 8 block of pixels), and the variance of the signal over the block is used to 
control watermark amplitude. In comparison, the amplitude adjustment in the present invention is performed separately 
55 for each individual pixel in the image, and the pixel value (not a local variance) is used to control the scaling factor. 
[0026] The adjustment of the watermark amplitude at each pixel location affects the estimated message image that 
is obtained during the extraction process. We can rewrite Eq. 2 to include the signal-dependent scaling factor cij (x, y): 
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M'(x,y) = 



l N 

. i=l 



®C(x,y) 



N 



J- V («i (x, y)[M(x, y) * C(x, y)] + 1 } (x,y)) 
N i=l 



®C(x,y) 



N 



— S«i(x,y) 

1N i=l 



[M(x,y)*C(x,y)J<8>C(x,y) + 



N 



1 i=l 



®C(x,y) 
(7) 



T5 [0027] As before, if we assume that the carrier is designed to have uniform Fourier amplitude, then the process of 
correlation of the carrier on the embedded image in Eq. 7, can be reduced to: 



20 



M'(x,y) = 



N 



. i=l 



M(x,y) + noise 



(8) 



= <x (x, y)M(x 3 y) + noise 



25 



where a(x,y) is the average scaling factor across all tiles at each spatial location (x, y). If a sufficiently large number 
of tiles are averaged, it is expected that a(x, y) would be approximately the same for every spatial location (x, y), i.e., 



30 



35 



40 



45 



M'(x, y) « <xM(x, y) + noise. 



(9) 



[0028] This is the same relationship that was obtained for the case of a constant scaling factor, and thus the signal- 
dependent watermark process does not significantly affect the extraction process if a large number of tiles are available. 
[0029] Even if only a few tiles are available, the resulting a(x, y) will have mainly low frequency variations. In the 
method by Honsinger et al. f the determination of the message data from the estimated message image fW(x,y) is done 
on a local basis, and the low frequency variations in M'(x,y) due to variations in a (x,y) will not greatly affect the extraction 
process. However, in some cases, it may be advantageous to undo the variations in lvT(x,y) that have been introduced 
by a(x,y). This can never be done perfectly since we only have access to the watermarked image /\x,y) , not the original 
image' l(x,y), during the extraction process. Still, l\x,tf provides an estimate of l(x, y), and we can use the signal 
dependent function f(r(x,y)) to estimate arfx, y) for each pixel in each tile. Since the watermark signal is similar to a 
noise field, it is also possible to filter P(x, y) to provide a better estimate of l(x,y). Any number of well-known noise 
filtering methods can be used for this purpose, e.g., lowpass linear smoothing filters or nonlinear filters such as median 
filters. Regardless of the method that is used to estimate l(x, y) s the resulting estimate can be evaluated with the signal 
dependent function to produce an estimate of the watermark scaling factor at each spatial location in each tile, i.e., 



a , i (x,y) = f(l , j (x,y)). 



(10) 



This estimate can then be used to normalize each pixel of each tile of the watermarked image prior to the averaging 
50 of the tiles: 



55 
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M'(x,y) = 



1 aj(x,y) 



. N i=iai (x,y)_ 
« M(x,y) + wotse 



M(x s y) + «owe ^ 



r00301 In addition to applying signal dependencies to the carrier amplitude, it may also be desirable to shape the 
io 252 frequency spectZ (specially, the Fourier amplitude spectrum) to make the embedded signal appearmore 
JS3 S . Patent 6,044,1 56, referenced above, the preferred carrier possesses a flat frequency spectrum 
e xce7nea the DC frequency. Referring to Fig. 5, a flat frequency amplitude spectrum 46 is preferred to ensure that 
the message image is reconstructed with the highest fidelity. However, as described in the Honsinger patent, the earner 
speSmmTshaped to include a ramp 48 in Fourier amplitude from DC frequency in order to m.n.m.ze the .mpact of 
15 the cross-correlation of the carrier with the image data. ,-, H».««n, m 

0031? lncontr a sttotheflats P ectmmrecommendedb y Ho n singeretal.,theshapeoftheFounerampl.tudespearum 

oVfNm grain noise (as well as many other imaging system noise sources) generally is a decreas^g funct.onwrth fre- 
quency Fig 6 depicts an example of a typical Fourier amplrtude spectrum 50 for film grain. U.S. Patent 5,641 ,596, 
referencedabove describes methods for characterizing the spatial correlation coefficients of film gram, which .s ent.rely 
talent to characterizing the Fourier amplitude spectrum. As shown in Fig. 7, according to one aspect of the present 
fnvention the carrier spectrum maintains the ramp 48 in Fourier amplitude, but the rema.mng earner spectrum 50 .s 
shaped to the same form as that of film grain. Because the carrier amplrtude spectrum decreases wrth frequency .n 
the region that was preferably flat according to Honsinger, the impact of this shaping is to reduce the ,n ormat.on 
car^ capacity of the embedding algorithm.However.giventhatthefi.mgrainnoise^nbeapreferredv.sualattnbute, 
increasing the amplitude (or, equivalent!* increasing the visibility) of the watermark pattern can compensate for the 
osL o? nfon7a«on carrying capacity. A drawback of this embodiment is the inclusion of the ramp reg.on m the earner 
sZtrum d^es not completely simulate the appearance of film grain noise. A solution to this problem .s to add an 
additional noise component (independent of the watermarking process) to the dispersed mes sage >W »P^m to 
fill in the low frequency ramp region 52 as shown in Fig. 8. This addrtional noise component ,s not an mtegral part of 
the watermarking process, but is included only to provide better visual qualities to the watermark pattern^ 
OOsTTa ^preferred embodiment of the invention, the carrier image spectrum is shaped identically to the f.lm gram 
noise Fig. 6 depicts the amplitude spectrum of this carrier. This eliminates the need to fill in the ramp region wrt.^ .non- 
information carrying noise data. However, for the reasons discussed above, th.s process may affect extract on per- 
oZnce because correlation of the embedded image with such a carrier will produce a strong cross«orre.at.on of 
the carrie with the original image content. This problem may be eliminated by defining two earner 'mages an embed- 
ding ^ca rierimage and an extracting carrier image. The embedding carrier image is designed us.ng the full frequency 
spectmm shTpe'of film grain 50 as in Fig. 6, but the extracting carrier image is filtered to include the ramp ,48 at low 
frequencies as in Fig. 7. As a result, the embedding carrier image contains the extraction earner .mage .n addrt.on to 
the extra low frequency energy that is needed to model the film grain noise. Practically, this causes no performance 
40 problems and allows a simpler embedding implementation. , . 

fo033] For completeness, we note that the phase spectrum of film grain noise .s of random character. V.sually, ob- 
servers do not perceive or care about the local pixel arrangements due to the phase of the no.se. They are far more 
sensitive to the effects produced by the amplitude spectrum of the noise. Therefore, the phase generation process of 
the earner requires no change from that described in U.S. Patent 6,044,156. „ aKllltx , nt a hlnh 

100341 As mentioned previously, the present invention offers a method for minim.z,ng the object.onab.lity of a high 
amplitude watermark. However, in some systems, suprathreshold watermarking may actually improve perceived qual- 
T An example of such a system is digital cinema. Digital cinema refers to the e.ectronic distnbut.on and d.splay of 
Seatrica. movies. Studios and distributors have a strong need to protect the movie content fmm unauthonzed use 
and watermarking can assist by establishing ownership and tracing the source of stolen content (through the use of 
rdelfSSnJlocation stamps inserted at the time of the movie presentation). To ^'^rt^cl of 
movie content, it is typically compressed by a significant amount using a techn.que such as MPEG. The process ; of 
compression often removes a large portion of the high frequency content, resulting in a d.sp ayed movje^ wrthout the 
expected look that inc.udes film grain noise. The present invention can be used to aM f^ d ^ en ^^^ 
compressed movie prior to display, thus providing a more natural look, while also prov.d.ng the benef rt of a watermark 

100351 in the preceding discussion, the present invention was used to replacefilm grain noise that had been removed 
by a compression process, while simultaneously providing a watemnark signal. The same concept can be extended to 
provide benefits in other systems. For example, it may be advantageous to deliberately remove the .nherent no.se from 
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an image or image sequence (using one of any well-known noise reduction techniques), and then replace the removed 
noise with a watermark signal that has a desired visual appearance. The watermark signal may have a visual appear- 
ance that is similar to the noise that was removed, or it could have completely different appearance (for example, a 
higher or lower noise level, or noise characteristics that mimic a different type of film). Techniques for creating noise 

5 fields with the desired characteristics are described in the aforementioned patent by Gray et al. The removal of existing 
noise and subsequent replacement by a watermark signal also provides for a system where an existing watermark 
pattern (which typically has the appearance of a noise field) can be effectively removed and then a new watermark 
pattern (perhaps containing different information than the original watermark or a combination of information from the 
original watermark and new information) is inserted. In a conventional system, a new watermark would be added 

10 directly to the image containing the original watermark, thus elevating the overall noise level due the addition of two 
watermark patterns. By effectively removing the first watermark pattern prior to the insertion of the new watermark 
pattern, the overall noise of the twice- watermarked image is kept to a desired level. 

[0036] While the invention has been discussed in terms of the watermarking process as described by Honsinger et 
al., it is obvious how the same method can be applied to any spatial domain watermarking process that uses a random 

15 noise carrier in the watermarking process. Some spatial domain watermarking processes use more than one carrier 
within a single image, where the resulting watermark pattern is the sum of the carriers after modulation by the message 
information. Signal-dependent scaling of the watermark pattern can also be performed for these types of watermarking 
methods. The invention can also be used for some types of frequency domain watermarking methods that use a PN 
sequence to produce a watermark pattern that has the visual characteristics of random noise. However, most frequency 

20 domain methods use frequency decompositions over local regions (e.g., 8 x 8 blocks, and it is not possible to adjust 
the watermark amplitude at each pixel location. Still, signal-dependent adjustment of the watermark can be performed 
using the average signal value within the local region, and this process is fundamentally different that the prior art 
methods that consider masking in adjusting the watermark amplitude. 

25 

Claims 

1 . A method for embedding a watermark signal that contains message data in a digital image represented as a two- 
dimensional array of pixel values, comprising the steps of: 

30 

a) providing a dispersed message image having pixel values representative of the message data; 

b) modifying each pixel value of the dispersed message image as a function of the corresponding pixel value 
in the digital image; and 

c) combining the modified dispersed message image with the digital image to produce a watermarked image. 

35 

2. The method claimed in claim 1 , wherein the step of providing a dispersed message image, comprises the steps of: 

a1) producing a message image representing the message data; 
a2) providing a carrier image; and 
40 a3) convolving the message image with the carrier image to produce the dispersed message image. 

3. The method claimed in claim 2, wherein the carrier image has random phase. 

4. The method claimed in claim 3, wherein the carrier image has a Fourier amplitude that models the Fourier amplitude 
45 of a specified system noise. 

5. The method claimed in claim 3, wherein the carrier image has a Fourier amplitude that models the high frequencies 
of the Fourier amplitude of a specified system noise and contains a ramp from zero for low frequencies. 

so 6. The method claimed in claim 1 , wherein the step of modifying each pixel of the dispersed message image comprises 
multiplying the pixel by a scaling factor representative of a specified system signal-dependent noise. 

7. The method claimed in claim 1 , further comprising the step of extracting the message data from the watermarked 
image. 

55 

8. The method claimed in claim 2, wherein the step of modifying each pixel of the dispersed message image comprises 
multiplying the pixel by a scaling factor representative of a specified system signal-dependent noise. 
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9. The method claimed in claim 8, further comprising the step of extracting the message image from the watermarked 
image by correlating the carrier image with the watermarked image. 

10 The method claimed in claim 9, further comprising the steps of forming an estimate of the scaling factor for each 
' pixel value in the dispersed message image, and dividing each pixel value of the watermarked image by the cor- 
responding estimated scaling factor prior to extracting the message data from the watermarked image. 
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